First published: Wed Dec 18 2024(Updated: )
An IDOR vulnerability in the manage-notes.php module in PHPGurukul Online Notes Sharing Management System v1.0 allows unauthorized users to delete notes belonging to other accounts due to missing authorization checks. This flaw enables attackers to delete another user's information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
PHPGurukul Online Notes Sharing Management System | ||
PHPGurukul Online Notes Sharing Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-55232 is considered a high severity vulnerability due to its potential for unauthorized data deletion.
To fix CVE-2024-55232, implement proper authorization checks in the manage-notes.php module to prevent unauthorized access.
The vulnerability affects users of PHPGurukul Online Notes Sharing Management System version 1.0.
CVE-2024-55232 allows attackers to delete notes belonging to other users due to a missing authorization check.
Currently, there is no known workaround for CVE-2024-55232, and updating the software is recommended to mitigate the risk.